Login / Join
You have old flash player version.
Please, update:
You don't have flash player installed.
Please install:

Get Adobe Flash player
William McBorrough, MSIA,CISSP,CISA,CRISC,CEH
Information Assurance and Cyber Security Expert, Researcher, Educator and Evangelist
United States, Woodbridge
www.askvisory.com/williammcborrough

Why you should speak with me:

I advise executives on how to manage your organization's security risk and protect your assets efficiently and cost effectively

Summary:

William J McBorrough is a Security Expert with many years of success Managing, Designing, and Implementing medium and large enterprise Physical and Information Technology Security Solutions. His experience spans the spectrum from small e-commerce start-ups to multi-campus state and federal agencies to multi-state financial sector organizations. He is also on the faculty of various universities including University of Maryland University College, EC-Council University, George Mason University and Northern Virginia Community College where he conducts research and teach graduate and undergraduate courses relating to cybersecurity, cybercrime, cyberterrorism, and information security and assurance. He holds a Bachelors of Science in Computing Engineering with a concentration in digital networks and a Masters of Science in Information Security and Assurance. He is a Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified in Risk Information System Control (CRISC), and Certified Ethical Hacker (CEH).He is well versed in personnel, systems and network security risk management. His core competancies include Developing cost effective solutions to enable mission assurance in the following areas: Enterprise Risk Management, IT Governance, Security Organization Development, Information Security and Assurance

Career History

Enterprise:
Secure Invention 
Position:
Advisor 
Summary:
Secure Intervention provides Expert Executive level Information Assurance and Cyber Security Advisory Services to help client executives and managers manage risks to their sensitive information and mission-critical systems throughout its entire life cycle. 
Year:
Oct 2011 – Present
Enterprise:
Department of Homeland Security/Transportation Security Administration 
Position:
Security Infrastructure Architect 
Summary:
Support new technology initiatives and TSA Meetings for Secure Infrastructure
Interface with DHS and other Components on Secure Infrastructure initiatives and other working groups
Analyze security requirements and provide recommendations to enhance security posture and for FISMA compliance
Act as a DRM/DLP Secure Infrastructure resource for internal data security and protection efforts
Extract and maintain Security Requirements from Policy, Standards and other Best Practices as required
Integrate Security Requirements throughout the Systems Engineering Life Cycle (SELC)
Review and provide recommendations for updates of TSA IT Security Policies and Technical Standards
Review and provide recommendations for COTS/GOTS TSA Application Approvals
Review and provide IAS recommendations for internal Application Development efforts
Develop and present technical presentations for a wide range of audiences 
Year:
Nov 2011 – Present
Enterprise:
Pragmatics, Inc. 
Position:
Lead Principal Engineer 
Summary:
Leads security projects as subject matter expert providing both internal and external consulting services. Works independently on advanced systems/software analysis projects. Develops and conducts training programs. Recommends future direction or projects to management. Provides expertise and direction in the development or modification of complex technology risk management programs. 
Year:
Nov 2011 – Present
Enterprise:
ISC8 
Position:
Board Member, Technical Advisory Board 
Summary:
A visionary in a world of look-alike security companies, ISC8 has evolved from Irvine Sensors Corporation, a company founded in 1974. Our singular focus now is to deliver the most comprehensive security solutions available - solutions that to give you visibility into everything that's happening on your mission-critical networks, and then mitigates your risk as new threats to your security emerge.

Having performed customer-funded research and developed technology used primarily by the U.S. government for key national security initiatives, ISC8 is now leveraging its more than 30-years of experience to bring a new breed of security products to market. These products are intended to solve the toughest challenges government, defense, and business face - including the human factor, a problem that until now has gone virtually unaddressed. 
Year:
Jan 2011 – Present
Enterprise:
EC-Council University 
Position:
Adjunct Faculty, Information Security 
Summary:
Teach multiple courses in EC-Council University's Masters of Security Science program. Courses include Disaster Recovery, e-Business Security, Cyber Law and Project Management in IT Security 
Year:
Jan 2011 – Present
Enterprise:
University of Maryland University College 
Position:
Assistant Professor, Cybersecurity 
Summary:
Teach multiple courses in the cybersecurity degree program including cybercrime and cyberterrorism, systems and telecommunications security architecture, and information security assessment and planning. 
Year:
Jan 2011 – Present
Enterprise:
InfraGard Nations Capital Members Alliance 
Position:
Member 
Summary:
Our 1000+ membership is voluntary yet exclusive and is comprised of individuals from both the public and private sector. The main goal of the Washington, DC Nations Capital Chapter of InfraGard is to promote ongoing dialogue, education, community outreach and timely communication between public and private members. Furthermore, to achieve and sustain risk-based target levels of capability to prevent, protect against, respond to, and recover from all hazards or events, and to minimize their impact on lives, property, and the economy.

InfraGard members gain access to vital information and education that enables them to in turn provide assistance to prevent and address terrorism and other transnational crimes. InfraGard members are provided threat advisories, alerts and warnings and access to a robust secure web-VPN site and e-mail. InfraGard also helps promote an effective liaison with local, state and federal agencies, to include the Department of Homeland Security.

The FBI retained InfraGard as an FBI sponsored program, and will work closely with DHS in support of the CIP mission. The FBI will further facilitate InfraGard's continuing role in CIP activities and further develop InfraGard's ability to support the FBI's investigative mission, especially as it pertains to counterterrorism and cyber crimes. The FBI and Department of Homeland Security Office of Infrastructure Protection are currently executing an InfraGard Partnership Program Plan under a Memorandum of Understanding signed in December 2007. 
Year:
Jan 2010 – Present
Enterprise:
Various Online Publications 
Position:
Infosec Blogger/Contributing Author/Reviewer 
Summary:
Contributing author/reviewer/blogger at various online media, focusing on information security, including Examiner.com, Focus.com, Ulitzer.com, InfoSec3T.com, Internet Evolution, and Enterprise IT Security magazine. 
Year:
Jan 2009 – Present
Enterprise:
Northern Virginia Community College 
Position:
Adjunct Faculty, Network Security 
Summary:
Teach multiple courses at undergraduate level, including:
• ‘Ethical Hacking, Attacks and Computer Crime’, which provides an in-depth exploration of various methods for attacking and defending a network from the point of view of the hacker and their attack methodologies
• ‘Network Defense, Firewalls, Intrusion Detection, and E-Commerce Security’, which provides an in-depth exploration of Firewalls, Intrusion Detection Systems, Virtual Private Network solutions, and E-Commerce Security Solutions
• ‘Network Security Layers’, which provides an in-depth exploration in the various security layers needed to implement a security program based in Defense-in-Depth philosophy. Topics covered include Security Management, Operations Security, Physical Security, LAN Security, Personnel Security, Applications/Database/Systems Security. 
Year:
Jan 2008 – Present
Enterprise:
George Mason University 
Position:
Adjunct Faculty, Network Security 
Summary:
Course examines information security services and mechanisms in network context. Topics include symmetric and asymmetric cryptography; message authentication codes, hash functions and digital signatures; digital certificates and public key infrastructure; access control including hardware and biometrics; intrusion detection; and securing network-enabled applications including e-mail and
web browsing 
Year:
Jan 2011 – May 2011
Enterprise:
Secure Intervention 
Position:
President & Information Security SME 
Summary:
Secure Intervention provides Expert Executive level Information Assurance and Cyber Security Advisory Services to help client executives and managers manage risks to their sensitive information and mission-critical systems throughout its entire life cycle. Our goal is to help you develop, implement and maintain sensible and cost-effective strategies to protect your information assets by investigating threats, eliminating vulnerabilities, and managing risks unique to your organization. 
Year:
Jan 2010 – Oct 2011
Enterprise:
SMB Cyber Security Alliance 
Position:
Founder and Security Evangelist 
Summary:
The SMB Cyber Security Alliance is volunteer-run organization seeking to increase cyber security awareness in small business communities through education, awareness training, free resources and consultations, and active engagements between small business owners and local security professionals. 
Year:
Jan 2010 – 2011

Education & Qualifications

University:
George Mason University 
Degree:
MS 
Year:
2010 
University:
George Mason University 
Degree:
BS 
Year:
2003 

Other Qualifications & Awards

Languages Spoken

Industry Focus:
Internet
Management Consulting
Business Areas:
IT – Information Technology
Strategy & Business Advisory

Key Skills:

Developing cost effective solutions to enable mission assurance in the following areas: Enterprise Risk Management, IT Governance, Security Organization Development, Information Security and Assurance

Feedback:

No feedback given yet